SecurelyFax

Security

Last updated: June 2026

Security is a first-class concern at SecurelyFax. This page describes our technical and organizational measures.

Encryption

Access control

Network & webhook security

Backups & durability

Nightly encrypted database snapshots are taken via pg_dump and uploaded to a separate S3 prefix outside the per-tenant namespace, with 30-day retention.

Incident response

Suspected security issues should be sent to security@securelyfax.com with details. We acknowledge within 2 business days and will notify affected customers without unreasonable delay if a breach is confirmed, consistent with HIPAA breach-notification requirements where applicable.

Responsible disclosure

We do not currently run a paid bug-bounty program but we are grateful for responsible disclosure. We will not pursue legal action against researchers who: